Open Source Vulnerabilities
roundcube, roundcube
roundcube - security update
librespeed speedtest stats.php cross site scripting
matio
Heap-buffer-overflow in H5T__bit_copy
optipng, optipng
Security update for optipng
radare2
Heap-buffer-overflow in r_bin_coff_new_buf
spring-data-mongodb
Security exception in org.springframework.expression.spel.ast.OpPlus.getValueInternal
spring-data-mongodb
Security exception in org.springframework.expression.spel.ast.OpPlus.getValueInternal
openssl-3, openssl-3
Security update for openssl-3
org.jupiter-rpc:jupiter-rpc
Jupiter allows attackers to execute arbitrary commands via sending a crafted RPC request
org.jupiter-rpc:jupiter-rpc
Jupiter allows attackers to execute arbitrary commands via sending a crafted RPC request
birdcage
Environment variables still accessible through /proc
birdcage
Environment variables still accessible through /proc
Open Redirect in Login Function of Calendarinho
Attribute Injection leading to XSS(Cross-Site-Scripting) in uptime-kuma
Attribute Injection leading to XSS(Cross-Site-Scripting) in uptime-kuma
Unescaped passing of the request URL in Collabora Online
Authenticated PostHog users vulnerable to SSRF
October CMS safe mode bypass using Page template injection
October CMS safe mode bypass using Twig sandbox escape
ASAR Integrity bypass via filetype confusion in electron
electron, electron, electron, electron, electron, electron
ASAR Integrity bypass via filetype confusion in electron
electron/ electron/ electron/ electron/ electron/ electron
ASAR Integrity bypass via filetype confusion in electron
Reflected Cross-site Scripting Vulnerability in dpaste
fastapi-proxy-lib
Cookie leakage between different users in fastapi-proxy-lib
fastapi-proxy-lib
Cookie leakage between different users in fastapi-proxy-lib
